1

Application Security Engineer Jobs in Florida (NOW HIRING)

DevSecOps Engineer Location: Miami, Florida (On-Site) 6-month contract Key Responsibilities ... Implement both SaaS-based security testing (SaaST) and dynamic application security testing (DAST ...

Manage application security assessments and lifecycle oversight to retire applications that are ... Engineer at a large, multi-state organization. #LI-MB1 Benefits Morgan & Morgan is a leading ...

New

$125K - $175K/yr

Support application security initiatives through static analysis, dependency management, and secure ... Engineering; background in IT is a plus * Strong Understanding of Threat and Vulnerability ...

Lead AppSec Engineer

Fort Myers, FL ยท On-site +1

$54.75 - $73.25/hr

Serve as asubject-matter-expertfor Application Security; actas a first point of contact for ... Scripting or programming experience (Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript ...

Showing results 41-60

Application Security Engineer information

See Florida salary details

$22

$49

$72

How much do application security engineer jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for application security engineer in Florida is $49.62, according to ZipRecruiter salary data. Most workers in this role earn between $42.21 and $56.39 per hour, depending on experience, location, and employer.

What does an application security engineer do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What does an application security engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an application security engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What are some common challenges faced by application security engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Florida?

The most popular types of Application Security Engineer jobs in Florida are:

What job categories do people searching Application Security Engineer jobs in Florida look for?

The top searched job categories for Application Security Engineer jobs in Florida are:

What cities in Florida are hiring for Application Security Engineer jobs?

Cities in Florida with the most Application Security Engineer job openings:

What are popular job titles related to Application Security Engineer jobs in FL?

For Application Security Engineer jobs in FL, the most frequently searched job titles are:

Infographic showing various Application Security Engineer job openings in Florida as of August 2026, with employment types broken down into 77% Full Time, 18% Part Time, and 5% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $103,213 per year, or $49.6 per hour.

Information Systems Security Engineer (ISSE)

Mantis Security Corporation

Sarasota, FL โ€ข On-site

Full-time

Re-posted 10 days ago


Job description

Description:

Mantis Security is a leading specialty firm of high caliber talent who specialize in Cyber Operations, Cyber Defense, Information Assurance, Software Development, DevSecOps, Security Engineering, and Cloud Engineering. We enable and protect our nation's most important IT assets and invest in the long-term career development of every employee! We are currently looking for the next Information Systems Security Engineer (ISSE) to join our team of experts!

As an ISSE on the Mantis Security Team, you will define information security requirements and their integration into information systems and its technology component through purposeful security design.

What You'll Be Doing:
• Develops and implements security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
• Identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.
Implement, validate Security Technical Implementation Guide (STIG) requirements and/or perform SRG assessments for all development and implementation projects.
• Develop, customize, and configure Splunk applications and dashboards.
• Develop Security Test Procedure (STP), conducts self-assessments to verify compliance with required configuration guidance and support A&A testing and validation of security designs.
• Conducting risk analysis reviewing ACAS, CVEs, plugins, CWEs, research, collaborate with System Administrators to mitigate identified vulnerabilities and/or author Plans of Actions and Milestones (PO&AM) as needed.
• Execution of continuous monitoring efforts responds to data calls, scan requests, and various weekly and monthly security metrics reporting requirements.
• Validate control implementations provide enforcement of the require data access and network flow restrictions align with the continuous monitoring strategy.
• Participates in Agile Planning Events to provide technical input.
• Support government activities and reporting to appropriate IC and DoD authorities (i.e., USCYBERCOM, IC-SCC)
• Support security authorization activities in compliance with the customer Information System Certification and Accreditation Process following the NIST Risk Management Framework (RMF), CNSSI No 1243 and other prescribed business processes for security engineering.
• Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions.
• Apply system security engineering expertise in one or more of the following to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing.

Requirements:

Must Haves:

• Must be a US Citizen
• 8 years of relevant experience and a Bachelor’s degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required. A Master’s degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline may be substituted for two (2) years of additional experience. Four (4) years of additional ISSE experience may be substituted for a bachelor’s degree.
• DoD 8570 compliance with IASAE Level 3 is required
• Three (3) years of experience in scripting languages, Linux/RedHat, and/or Networking Appliances
Information Systems Security Engineering Professional (ISSEP) and CISSP Certifications are required
• Active TS/SCI security clearance with the ability to obtain polygraph is required

Nice to Haves:

• Skilled in implementing mitigation strategies and how to resolve problems, and to re-test/ re-evaluate systems
• Demonstrated experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
• Possess a working knowledge of administrating servers, system and application security threats and vulnerabilities
• Experience extending existing applications in areas such as security, monitoring, task automation, continuous integration, deployment, and performance optimization
• Demonstrate writing of your own project in scripting/programming (use of Shell scripting, Python, JavaScript, PowerShell) in a Linux or Windows environment to support the various Cyber Security tools and applications required
• Provide guidance on vulnerability and malware remediation.
• Experience analyzing vulnerabilities, establishing cause and impact, and identifying the corrective action needed to eliminate and prevent the event from happening in the future.